๐ง๐ฌ
Stoyko Stoykov
2026-08-29 03:20:19
(1 day ago)
162.158.78.5 - - [29/Aug/2026:06:20:16 +0300] "GET /.env.bak HTTP/1.1" 301 162 "-" "crusader-worker/ ...
show more
162.158.78.5 - - [29/Aug/2026:06:20:16 +0300] "GET /.env.bak HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
...
show less
Hacking
Web App Attack
๐จ๐ญ
4server
2026-08-22 12:47:44
(1 week ago)
[SatAug2214:47:36.7377882026][security2:error][pid2469914:tid2470296][client162.158.78.5:0]ModSecuri ...
show more
[SatAug2214:47:36.7377882026][security2:error][pid2469914:tid2470296][client162.158.78.5:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"465\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"rssolution.ch\"][uri\"/.env.development.local\"][unique_id\"aomaaKuOzN5zKjllLou6-AAAAQ4\"]\,referer:https://www.google.com/search\?q=rssolution.ch
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 01:40:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:40:45.088550 2026] [security2:error] [pid 8097:tid 8097] [client 162.158.78.5:11242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.fruitsinthedesert.com"] [uri "/.git/HEAD"] [unique_id "aoj-HTbfbzeKLBFUGxKtVAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 03:14:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 23:14:17.407448 2026] [security2:error] [pid 13975:tid 13975] [client 162.158.78.5:10269] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cbcconsult.com"] [uri "/.git/config"] [unique_id "aoPOCZWVGFVMgm2J46bUPAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 02:49:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:49:19.396885 2026] [security2:error] [pid 29626:tid 29626] [client 162.158.78.5:10897] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thelittleprince.net"] [uri "/.git/HEAD"] [unique_id "aoPIL45Jveymiu4geUcOfgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 13:32:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 09:32:42.855658 2026] [security2:error] [pid 9788:tid 9788] [client 162.158.78.5:9416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.vcmail.net"] [uri "/.git/config"] [unique_id "aoMNep48hcGM70kuoJP8jAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 12:43:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 08:43:46.552122 2026] [security2:error] [pid 13368:tid 13368] [client 162.158.78.5:11568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.postermodelsxxx.com"] [uri "/.git/HEAD"] [unique_id "aoMCAufYOtMXsPVZFYlDZAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:01:04
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:00:57.224974 2026] [security2:error] [pid 32682:tid 32682] [client 162.158.78.5:10303] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.moontouchmassage.com"] [uri "/.git/config"] [unique_id "aoLNyT_BxK0Amaiuf7XwsAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:41:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:41:41.184510 2026] [security2:error] [pid 13358:tid 13358] [client 162.158.78.5:12152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.robinsnestingplace.net"] [uri "/.git/HEAD"] [unique_id "aoJm1cGNiVbfhc4Pdwi7oAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 09:58:51
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 05:58:43.222605 2026] [security2:error] [pid 3393624:tid 3393661] [client 162.158.78.5:11546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.leaderoftheopposition.com"] [uri "/.git/HEAD"] [unique_id "aoGJ04NUOjIvCXBH42KtaQAAAMY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:57:38
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:57:34.412469 2026] [security2:error] [pid 8537:tid 8537] [client 162.158.78.5:12008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.theyoungstrategist.com"] [uri "/.git/HEAD"] [unique_id "aoFtbkAR9WaFw9AxePR9GAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:23:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:23:14.458770 2026] [security2:error] [pid 16644:tid 16644] [client 162.158.78.5:12686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "esware.com"] [uri "/.git/HEAD"] [unique_id "aoFJQnRn_s7AelY9VX509gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 02:38:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 22:38:32.632777 2026] [security2:error] [pid 10967:tid 10989] [client 162.158.78.5:11629] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.switchbl8.nl"] [uri "/.git/HEAD"] [unique_id "aoEiqKB20lDdOU2VNb3uNAAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Jochen Pretli
2026-08-13 16:15:00
(2 weeks ago)
connection to honeypot
Email Spam
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-11 17:56:02
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 13:55:57.331302 2026] [security2:error] [pid 329647:tid 329647] [client 162.158.78.5:10904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aisoftwaretools.michaelthompson.biz"] [uri "/.git/HEAD"] [unique_id "antiLR5X8qaIRC26qBNrTgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack